21 час назад
Senior Cyber Threat Intelligence (CTI) Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cyber Threat Intelligence (CTI) Analyst (Cybersecurity): Conducting hands-on analysis of threat actors, malware, phishing, ransomware, malicious infrastructure, and cybercrime targeting live entertainment, ticketing, and e-commerce with an accent on actionable intelligence production, detection engineering, and incident response support. Focus on investigating adversary infrastructure, triaging malware and phishing kits, developing YARA and Sigma detections, mapping activity to MITRE ATT&CK, and briefing technical and executive stakeholders.
Location: Remote in the United Kingdom; working hours are 9:00 AM–18:00 PM GMT.
Company
operates in live entertainment, ticketing, and e-commerce, with a global cybersecurity function.
What you will do
- Conduct hands-on cyber threat intelligence analysis covering threat actors, campaigns, malware, phishing, ransomware, infrastructure, and cybercrime ecosystems.
- Produce tactical, operational, and strategic intelligence reports, threat assessments, executive briefings, threat actor profiles, RFIs, and recommendations.
- Manage intelligence lifecycle activities, including requirements gathering, collection, analysis, enrichment, dissemination, and feedback.
- Investigate malicious infrastructure, malware, phishing kits, attacker tooling, dark web sources, and internal security telemetry.
- Identify detection opportunities and collaborate with Detection Engineering on YARA, Sigma, Suricata, and SIEM detection content.
- Support threat hunting, incident response, vulnerability management, fraud, and cyber defense while mentoring analysts and maturing CTI processes and tooling.
Requirements
- 5+ years of hands-on experience in cyber threat intelligence, cyber intelligence, or a dedicated threat intelligence function.
- Experience with threat actor, campaign, IOC, TTP, ransomware, cybercrime, fraud, credential exposure, and adversary infrastructure analysis.
- Strong understanding of the intelligence lifecycle and MITRE ATT&CK, including Priority Intelligence Requirements and collection planning.
- Experience using SIEM, EDR, TIP, OSINT, dark web, passive DNS, WHOIS, TLS certificate, internet-scan, sandbox, and detonation data.
- Proficiency in at least one query language such as KQL, SPL, CQL, or SQL; ability to read code and script with Python or Bash.
- Experience communicating with technical, business, and senior leadership stakeholders, mentoring analysts, and working with incident response or security operations teams.
Nice to have
- Static or dynamic malware analysis, reverse engineering, host forensics, network flow analysis, or detection rule authoring.
- Experience with Ghidra, IDA, x64dbg, Cobalt Strike, Sliver, Mythic, MISP, ThreatConnect, EclecticIQ, Anomali, STIX/TAXII, or intelligence APIs.
- Knowledge of AWS, Azure, GCP, AI use cases in CTI, intelligence-sharing groups, or security certifications such as GCTI, GCFA, GREM, OSCP, or CISSP.
Culture & Benefits
- Remote-friendly and flexible work culture.
- Collaborative environment focused on mentorship, inclusion, diversity of thought, and continuous growth.
- Exposure to threat landscapes across live entertainment, e-commerce, and cloud infrastructure.
- Opportunity to shape the maturity and impact of the global threat intelligence function.
- 401(k) retirement program with employer match.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Senior SOC Analyst (Cybersecurity)
19 часов назад
Lead Threat Analyst (Cyber Threat Intelligence | Threat Hunting | GCTI) (Cybersecurity)
7 дней назад
Senior Security Analyst (Cybersecurity)
50 000 - 60 000GBP
18 часов назад
Senior SOC Analyst (Cybersecurity)
3 дня назад
SOC Analyst (Cybersecurity)
123 850 - 161 000$
18 часов назад